The fix is to use htmlentities() or htmlspecialchars() to filter ALL html
from user input.
Feedback :
If you have additional information or notice any errors regarding this security advisory, please use contact form or email us at info()securityreason()com.